Commit Graph

54857 Commits (0c18776fa8ea64d0e3ed98d470d51606dd770b61)
 

Author SHA1 Message Date
Angel Fernando Quiroz Campos 2b83d15820 Security: Replace HTML form with FormValidator to avoid possible XSS when uploading file in some tool 2 years ago
Angel Fernando Quiroz Campos 7080b9be8b Security: Replace HTML form with FormValidator to avoid possible XSS when searching session category 2 years ago
Angel Fernando Quiroz Campos e6999a97c4 Security: Plugin: Validate plugin name to load its README.md file 2 years ago
Angel Fernando Quiroz Campos 884d9b396b Security: Avoid dangerous file name when uploading a file by extra field 2 years ago
Angel Fernando Quiroz Campos d7ead2f920 Security: Clean path when upload files to avoid arbitrary file write 2 years ago
Angel Fernando Quiroz Campos c9f912ba2e Security: Remove curdirpath param in ajax request to upload images when enable_uploadimage_editor is enabled 2 years ago
NicoDucou 36449ab103 Document: add configuration option to include MathJax script in all HTML document before returning the document for download - refs BT#21424 2 years ago
NicoDucou 6a1612b78b exercise: minor: partial translation update for new option for pending attemps to show only attempts from exercice with question that do not have automatic correction in EN, FR, ES -refs BT#21482 2 years ago
NicoDucou 64fc4450a4 Exercise : add option to select type of question on pending attempt page - refs BT#21482 2 years ago
NicoDucou e5ccf4d6e8 Document: add MathJax script in all HTML document before returning the document for download - refs BT#21424 2 years ago
NicoDucou 57c05b7f81 Maintenance: fix commit 9f22a9c76c adding option to enable scorm folder selection for backup creation -refs BT#21488 2 years ago
NicoDucou 4bb326deac Maintenance: Minor: partial translation update for new option for course backup to select Scorm folders in EN, FR, ES -refs BT#21488 2 years ago
NicoDucou 9f22a9c76c Maintenance: adding option to enable scorm folder selection for backup creation -refs BT#21488 2 years ago
Yannick Warnier 07fef8127a Minor: Admin: Add legend to visibility field values in CSV course update - refs BT#21513 2 years ago
Yannick Warnier 9d2f5fffc2 Admin: Fix typo in visibility field mapping of CSV course update - refs BT#21513 2 years ago
Yannick Warnier b1d1e16db9 Minor: Fix typos in documentation 2 years ago
Yannick Warnier 49025cad7a Merge branch '1.11.x' of github.com:chamilo/chamilo-lms into 1.11.x 2 years ago
Yannick Warnier 3c6dd38d1f Authentication: Fix excessive filter preventing terms and conditions to show on new user auto-registration - refs BT#11727 #5111 2 years ago
Nicolas Ducoulombier 829f35d81d
Merge pull request #5299 from LudiscapeXApi/patch-28 2 years ago
Nicolas Ducoulombier 3483db99c2
Merge pull request #5298 from LudiscapeXApi/patch-27 2 years ago
NicoDucou 3b13d0094c Internal: fix session_lifetime to accept the use of multiple URL configuration - refs BT#21495 2 years ago
DamienLyon f94d85a2e7
Update all_my_gradebooks.php Display footer 2 years ago
DamienLyon d2ce9b5d64
Update all_my_gradebooks.php 2 years ago
NicoDucou 91f9823010 Gradebook: Add a global page for the user to be able to see all the requirement in all its courses where a gradebook is set -refs BT#21224 2 years ago
NicoDucou 87f83bf4f7 Tracking: fix timezone issue in date calculation that generates error with logout date comparaison - refs BT#21495 2 years ago
christianbeeznest 5f87db660c
Admin: Fix course CSV import: Preserve existing non-required fields - refs BT#21441 2 years ago
NicoDucou 6a57e1b62c Exercise: fix option 'show_exercise_attempts_in_all_user_sessions' to have correct listing of course and correct exercises attempts - refs BT#21478 2 years ago
Yannick Warnier 503d9d0ee8 Admin: Add visibility to course import/export/update through CSV/XML - refs BT#21415 2 years ago
Angel Fernando Quiroz Campos bef68ffe05 Security: Message: Block anonymous users to get count of messages 2 years ago
Angel Fernando Quiroz Campos 3b98682199 Security: Social: Remove XSS when displaying group messages 2 years ago
Angel Fernando Quiroz Campos 7a0e10cccc Security: Social: Protect form to post in wall 2 years ago
Angel Fernando Quiroz Campos a1a1e4df70 Security: Ensure that is the current user whose data is modified 2 years ago
Yannick Warnier 1121aec124 Internal: Fix issue with all AJAX requests created by previous code syntax improvement commit 4dbc251abd 2 years ago
NicoDucou 5041118ba5 Exercise: fix option 'show_exercise_attempts_in_all_user_sessions' to show results in the sessions - refs BT#21478 2 years ago
NicoDucou 4c53420954 Tracking: Minor: fix partial translation update for new time format presentation in EN, FR, ES -refs BT#21469 2 years ago
NicoDucou 642345e7b7 Tracking: Minor: partial translation update for new time format presentation in EN, FR, ES -refs BT#21469 2 years ago
NicoDucou 7bc5d27843 Tracking: adapt time presentation in access details report by adding an option lang to api_format_time -refs BT#21469 2 years ago
NicoDucou 384b85e6d7 Tracking: fix session listing to include terminated sessions -refs BT#21469 2 years ago
Yannick Warnier 0cbb077120 Documentation: Update link to new forum on admin page and menu block 2 years ago
Yannick Warnier 400f7a4bed Admin: Add update courses through CSV/XML - refs BT#21441 2 years ago
NicoDucou 80df5b7d8c Script: Cron: add possibility to empty an extra field when anonymizing a user -refs BT#21445 2 years ago
Angel Fernando Quiroz Campos 58d3647c90 Security: fix check on security token when accepting the cookie warning 2 years ago
Yannick Warnier c88d336d0d
Security: add check on security token in settings.php when there are no other errors (potential CSRF) - refs BT#21427 2 years ago
Yannick Warnier 5a3330d197 Merge branch '1.11.x' of github.com:chamilo/chamilo-lms into 1.11.x 2 years ago
Yannick Warnier 4638242b13 Documentation: Add the change of system_version in the upgrade guide in all languages 2 years ago
Angel Fernando Quiroz Campos 6ed175710e Security: FormValidator check the token even when there are no errors 2 years ago
Angel Fernando Quiroz Campos 702672c2aa Plugin: AzureActiveDirectory: Fix error when loading index file as standalone 2 years ago
Yannick Warnier 3740eece4c Security: Add filter on GET data in admin users list - refs BT#21427 2 years ago
Yannick Warnier 29357ac548 Security: Fix potential XSS in course catalogue - refs BT#21427 2 years ago
Yannick Warnier 5a66124922 Security: Escape URL query params before using them to build AJAX link to avoid potential XSS (only affects admin accounts) - refs BT#21427 2 years ago